10-08-2011 01:10 PM
Hi,
I set the following
parametermap type conection TCP-60sec
set timeout inactivity 60
policy-map multi match Tandem
class POS-33067
loadbalance vip inservice
loadbalance policy POS-33067
loadbalance vip icmp-reply
loadbalance vip advertise
connection advanced-options TCP-60sec
interface vlan 100
service-policy input Tandem
Unfurtunetly this is not affect. after clear conn there will be connections which have more than 60 sec idle timeout.
Very thanks
10-08-2011 02:13 PM
remove and reapply your service policy on the vlan interface ?
10-08-2011 11:32 PM
Hi,
i did not !
Is it needed or a idea?
Thanks,
10-09-2011 12:27 AM
I'm not the devloper of the box
I've always believed that it would reprogram some parts of the data plane.
10-10-2011 03:24 AM
Hi Karoly,
Please take into account that, as long as one of the sides of the connection (client-to-ace or ace-to-server) is still open, the other one will remain open as well even if the inactivity timeout is higher than what it's configured. This could happen if, for example, one of the sides is using TCP keepalives but the other one is not.
This is just something to check to see if you really have an issue or not. If you need further troubleshooting, I would recommend you to open a TAC case.
Regards
Daniel
10-10-2011 03:51 AM
Thanks Daniel,
there are no keepalives. ace-to-server session was closed and ace-to-client was ESTABLISHED state.
The idle time more than 60sec in both.
The client initiated one connection and server closed it with FIN, but client send RST w/o FIN,ACK.
I do not understand why does not the RST packet closed the ACE sessions??
10-10-2011 05:06 AM
Hi Karoly,
I'm afraid I cannot give you a straight answer. Please, open a TAC case and we will have a deeper look into it.
Daniel
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide